Sharp's vulnerability footprint spans a large portfolio of multifunction office devices and associated firmware, with disclosures concentrated across its MX-series copiers, printers, and related imaging products that are widely deployed in enterprise environments. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, reflecting the complexity of embedded device firmware and network-facing interfaces. The exposure recurs through weakness classes including path traversal, cross-site scripting, untrusted search paths, and missing authentication for critical functions—patterns typical of firmware lacking rigorous input validation and access controls on administrative and device-management interfaces. Defenders should inventory affected MX-series devices, prioritize firmware updates, and restrict direct network exposure to device management consoles; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sharp over time
Signals from CVEs in this vendor scope (39 CVEs).
39 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-3929CRITICAL The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron Sh | Apr 30, 2019 | 9.8 | 99 | YES | YES |
CVE-2025-12049CRITICAL Missing Authentication for Critical Function vulnerability in Sharp Display Solutions Media Player MP-01 All Verisons allows a attacker may access to the web interface of the affec | Dec 22, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-11543CRITICAL Improper Validation of Integrity Check Value vulnerability in Sharp Display Solutions projectors allows a attacker may create and run unauthorized firmware. | Dec 22, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-11542CRITICAL Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary commands and programs. | Dec 22, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-11541CRITICAL Stack-based Buffer Overflow vulnerability in Sharp Display Solutions projectors allows a attacker may execute arbitrary commands and programs. | Dec 22, 2025 | 9.8 | 34 | NO | NO |
CVE-2019-3930CRITICAL The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron Sh | Apr 30, 2019 | 9.8 | 32 | NO | NO |
CVE-2023-7077CRITICAL Sharp NEC Displays (P403, P463, P553, P703, P801, X554UN, X464UN, X554UNS, X464UNV, X474HB, X464UNS, X554UNV, X555UNS, X555UNV, X754HB, X554HB, E705, E805, E905, UN551S, UN551VS, X | Feb 5, 2024 | 9.8 | 28 | NO | NO |
CVE-2024-47406CRITICAL Sharp and Toshiba Tec MFPs improperly process HTTP authentication requests, resulting in an authentication bypass vulnerability. | Oct 25, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-23789HIGH Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earlier allows a network-adjacent unauthenticated attacker to execute an arbitrary OS command on | Feb 14, 2024 | 8.8 | 25 | NO | NO |
CVE-2020-5571HIGH SHARP AQUOS series (AQUOS SH-M02 build number 01.00.05 and earlier, AQUOS SH-RM02 build number 01.00.04 and earlier, AQUOS mini SH-M03 build number 01.00.04 and earlier, AQUOS Keit | Apr 23, 2020 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (39 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sharp.
Media articles that mention a CVE ID that affects a product developed by Sharp — matched by CVE ID, not by vendor name.